![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
CVE ID: | CVE-2015-1827 |
Description: | The get_user_grouplist function in the extdom plug-in in FreeIPA before 4.1.4 does not properly reallocate memory when processing user accounts, which allows remote attackers to cause a denial of service (crash) via a group list request for a user that belongs to a large number of groups. |
Test IDs: | None available |
Cross References: |
Common Vulnerability Exposure (CVE) ID: CVE-2015-1827 73376 http://www.securityfocus.com/bid/73376 FEDORA-2015-4747 http://lists.fedoraproject.org/pipermail/package-announce/2015-April/154314.html FEDORA-2015-4788 http://lists.fedoraproject.org/pipermail/package-announce/2015-March/154103.html RHSA-2015:0728 http://rhn.redhat.com/errata/RHSA-2015-0728.html https://bugzilla.redhat.com/show_bug.cgi?id=1205200 https://bugzilla.redhat.com/show_bug.cgi?id=1205200 https://fedorahosted.org/freeipa/ticket/4908 https://fedorahosted.org/freeipa/ticket/4908 |